Hi guys,
We are trying to set up intercluster trunk between our two sites, one site is using Cisco ASA and other site is using Checkpoint as a firewall.
On both the firewalls we have allowed TCP/1720. We are not able to get trunk registered through this setup. On Cisco ASA we have configured inspect h323 ras and inspect h323 h225. No NAT is being used
When we try to make a call from the call manager which is behind Cisco ASA, we see SYN timeout after ASA trying to build TCP connection on port 1720 after about 30 seconds. ICMP works fine as both call manager can ping each other.
Has anyone done ICT set up through firewalls and any other configuration that we have missed on firewall?
Thanks